1 - 10 of 18

Detailed Analysis - Troj/Batten-A - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/Troj~Batten-A/detailed-analysis.aspx

18 Apr 2007 ... Troj/Batten-A is a batch script Trojan that stops security-related services and modifies security-related registry entries. Troj/Batten-A is a batch ...

Detailed Analysis - W32/Rbot-GQW - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GQW/detailed-analysis.aspx

When first run W32/Rbot-GQW copies itself to <System>\updaterarwin.exe and creates the file <Root>\a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Agobot-AIY - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Agobot-AIY/detailed-analysis.aspx

When first run W32/Agobot-AIY copies itself to <System>\msnssgr.exe and creates the file <Root>\a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-AIP - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-AIP/detailed-analysis.aspx

The file a.bat is detected by Sophos as Troj/Batten-A. It attempts to disable a number of security-related services and then attempts to delete itself. W32/Rbot- AIP ...

Detailed Analysis - W32/Rbot-ZV - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-ZV/detailed-analysis.aspx

... runs the file C:\A.BAT in order to stop certain security-related services and change certain security-related registry entries. This file is detected as Troj/Batten -A.

Detailed Analysis - W32/Rbot-GWW - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GWW/detailed-analysis.aspx

... arbitrary files - start a remote shell - steal information - reduce system security. W32/Rbot-GWW creates "C:\a.bat" which is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-FNB - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-FNB/detailed-analysis.aspx

15 Sep 2006 ... When first run W32/Rbot-FNB copies itself to <System>\winl0g0z.exe and creates the file \a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-GGX - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GGX/detailed-analysis.aspx

27 Feb 2007 ... When first run W32/Rbot-GGX copies itself to <System>\msnmsger.exe and creates the file \a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - Troj/Rbot-GAV - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/Troj~Rbot-GAV/detailed-analysis.aspx

13 Jan 2007 ... When first run Troj/Rbot-GAV copies itself to <System>\cronos.exe and creates the file \a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-GMJ - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GMJ/detailed-analysis.aspx

23 Apr 2007 ... ... first run W32/Rbot-GMJ copies itself to <System>\winlogom.exe and creates the file <Root>\a.bat. The file a.bat is detected as Troj/Batten-A.

1 - 10 of 18